CVE-2005-0445

Cross-site scripting (XSS) vulnerability in Open WebMail 2.x allows remote attackers to inject arbitrary HTML or web script via the domain name parameter (logindomain) in the login page.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:open_webmail:open_webmail:2.00:*:*:*:*:*:*:*
cpe:2.3:a:open_webmail:open_webmail:2.01:*:*:*:*:*:*:*
cpe:2.3:a:open_webmail:open_webmail:2.10:*:*:*:*:*:*:*
cpe:2.3:a:open_webmail:open_webmail:2.20:*:*:*:*:*:*:*
cpe:2.3:a:open_webmail:open_webmail:2.21:*:*:*:*:*:*:*
cpe:2.3:a:open_webmail:open_webmail:2.30:*:*:*:*:*:*:*
cpe:2.3:a:open_webmail:open_webmail:2.32:*:*:*:*:*:*:*
cpe:2.3:a:open_webmail:open_webmail:2.40:*:*:*:*:*:*:*
cpe:2.3:a:open_webmail:open_webmail:2.41:*:*:*:*:*:*:*
cpe:2.3:a:open_webmail:open_webmail:2.50:*:*:*:*:*:*:*

History

20 Nov 2024, 23:55

Type Values Removed Values Added
References () http://secunia.com/advisories/14253 - Patch, Vendor Advisory () http://secunia.com/advisories/14253 - Patch, Vendor Advisory
References () http://securitytracker.com/id?1013172 - () http://securitytracker.com/id?1013172 -
References () http://turtle.ee.ncku.edu.tw/openwebmail/doc/changes.txt - () http://turtle.ee.ncku.edu.tw/openwebmail/doc/changes.txt -
References () http://turtle.ee.ncku.edu.tw/openwebmail/download/cert/patches/SA-05:01/2.5x.patch - () http://turtle.ee.ncku.edu.tw/openwebmail/download/cert/patches/SA-05:01/2.5x.patch -
References () http://www.securityfocus.com/bid/12547 - () http://www.securityfocus.com/bid/12547 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/19335 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/19335 -

Information

Published : 2005-05-02 04:00

Updated : 2024-11-20 23:55


NVD link : CVE-2005-0445

Mitre link : CVE-2005-0445

CVE.ORG link : CVE-2005-0445


JSON object : View

Products Affected

open_webmail

  • open_webmail